Joomla! Kide Shoutbox Security Bypass Vulnerability
BID:38206
Info
Joomla! Kide Shoutbox Security Bypass Vulnerability
| Bugtraq ID: | 38206 |
| Class: | Access Validation Error |
| CVE: |
CVE-2009-4232 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 03 2009 12:00AM |
| Updated: | Feb 12 2010 05:01PM |
| Credit: | An anonymous researcher. |
| Vulnerable: |
JoniJnm Kide Shoutbox 0.4.6 |
| Not Vulnerable: | |
Discussion
Joomla! Kide Shoutbox Security Bypass Vulnerability
The Joomla! Kide Shoutbox component is prone to a security-bypass vulnerability.
Attackers can exploit this vulnerability to bypass certain security restrictions and gain unauthorized access to the affected application in the context of another user.
Kide Shoutbox 0.4.6 is affected; other versions may be vulnerable as well.
The Joomla! Kide Shoutbox component is prone to a security-bypass vulnerability.
Attackers can exploit this vulnerability to bypass certain security restrictions and gain unauthorized access to the affected application in the context of another user.
Kide Shoutbox 0.4.6 is affected; other versions may be vulnerable as well.
Exploit / POC
Joomla! Kide Shoutbox Security Bypass Vulnerability
An attacker can exploit this issue through a browser.
An attacker can exploit this issue through a browser.
Solution / Fix
Joomla! Kide Shoutbox Security Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Joomla! Kide Shoutbox Security Bypass Vulnerability
References:
References:
- Kide Shoutbox (JoniJnm)
- Vulnerability Summary for CVE-2009-4232 (NIST)